Skip to content
Pentesys
The Pentesys Portal

Every service, driven by one platform

Developed in-house with the sole purpose of enabling penetration testing and simplifying the whole lifecycle — from scoping and scheduling through to reporting and retesting.

Mirage security dashboard showing risk score, key metrics and severity breakdown

Security Dashboard

Live Security Dashboard

See your entire security posture at a glance with a live risk score, severity breakdown and active assessment status. The dashboard consolidates findings from every module so you can prioritise the work that matters most.

Live Dashboard
Executive Reporting
AI Assistant
Risk Trends
Evidence Management
Retesting
Compliance
Integrations
Asset Management
Tickets
AI Pentesting

AI acceleration included in every service line

We embed AI-assisted automation across Pentesys services to speed up testing and make continuous security assurance more affordable — without sacrificing the human validation that makes findings trustworthy.

Discuss AI pentesting
  • AI built into every service line

    From attack surface discovery to vulnerability scanning and report drafting, AI acceleration is included in every engagement — not an add-on.

  • Faster testing cycles

    Automated assessment runs continuously across your external surface, networks, applications and APIs, so coverage keeps pace with releases.

  • Human validation on every finding

    Qualified consultants review, triage and confirm every AI-generated result before it reaches you, so you only act on real risk.

  • Security assurance made affordable

    By automating repetitive reconnaissance and scanning work, we keep consultant time focused where it matters — giving you continuous assurance at a sustainable cost.

CTEM

Built for Continuous Threat Exposure Management

Traditional penetration testing gives you a point-in-time snapshot. The Mirage Portal combines continuous testing, external attack surface visibility, remediation management and expert human validation in one platform.

  1. 1Continuous exposure validation
  2. 2Validate exploitable risks
  3. 3Prioritise remediation
  4. 4Measure security improvements
  5. 5Continuous security improvement
Why the Portal

From a PDF that gets forgotten to a programme that keeps working

The Mirage Portal combines human-led expertise, AI-assisted analysis and real-time reporting to give security teams ongoing visibility of cyber risk.

Traditional approach

  • PDF report
  • Static findings
  • Forgotten after 3 months
  • Email updates
  • No remediation tracking
  • Slow legal and procurement

Mirage Portal

  • Live dashboard
  • Continuous testing
  • AI-assisted prioritisation
  • Remediation tracking
  • On-demand retesting
  • Executive reporting
Platform Capabilities

Everything a continuous testing programme needs

One intelligent platform covering exposure, testing, adversary simulation, governance, AI-assisted analysis and collaboration.

Continuous visibility of your external attack surface

Discover internet-facing assets, identify exposed services and keep an up-to-date view of your external estate, with automated discovery backed by expert validation.

  • Continuous external asset discovery
  • Internet-facing service monitoring
  • Domain and subdomain visibility
  • Exposure trend analysis
  • Human-validated security findings

Modern penetration testing, delivered continuously

Move beyond annual tests with an always-available platform that manages testing, findings, remediation and retesting throughout the year.

  • Continuous penetration testing programmes
  • Real-time vulnerability reporting
  • Unlimited stakeholder portal access
  • On-demand retesting requests
  • Historical testing and trend analysis

Continuous adversary simulation

Plan, manage and review sophisticated adversary simulation exercises from a single platform, with full visibility of objectives, progress and outcomes.

  • Campaign planning and management
  • Attack chain visualisation
  • MITRE ATT&CK mapping
  • Executive and technical reporting
  • Continuous security improvement tracking

Simplify governance, strengthen compliance

Centralise security findings, compliance evidence and risk management so you can demonstrate assurance across every framework you're measured against.

  • Centralised compliance evidence repository
  • Map findings to security frameworks
  • Track organisational risk and remediation
  • Monitor compliance across multiple standards
  • Generate audit-ready reports instantly

AI-assisted intelligence

Accelerate security operations with AI-assisted insight that prioritises vulnerabilities, summarises findings and recommends remediation — always human-validated.

  • AI-powered summaries of technical findings
  • Intelligent remediation for every vulnerability
  • Automatic prioritisation by business impact
  • Trend identification through AI-assisted analysis
  • Human-validated insight you can trust

Seamless collaboration with security experts

Direct communication between your internal teams and Pentesys specialists, with notifications and status alerts keeping everyone informed end to end.

  • Assign remediation tasks
  • Comment within findings
  • Real-time status updates
  • Scale testing up or down without fixed dates
  • Full activity audit trail
Module detail

Inside every Mirage module

The workflows, capabilities, coverage and deliverables behind Surface, Validate, Adversary and Assure.

Mirage Surface badge

Mirage Surface

External Attack Surface Management (EASM)

Continuously discover, inventory and monitor every internet-facing asset your organisation owns. Mirage Surface identifies exposures before attackers do, with automated discovery, risk scoring and real-time alerting.

  1. 01

    Asset discovery

    Subdomains, IPs, ports, CT logs, DNS

  2. 02

    Tech detection

    300+ fingerprints across frameworks & servers

  3. 03

    Tech analysis

    Version tracking, CVE correlation, risk scoring

  4. 04

    Credential scanning

    Breach databases, leaked password detection

  5. 05

    Dark web

    Forums, Pastebin, GitHub, Telegram monitoring

Asset discovery

Multi-source subdomain enumeration via SecurityTrails, Certificate Transparency logs and DNS resolution, with automatic deduplication and normalisation.

Port & service scanning

Quick and full port scans with service identification, banner grabbing and protocol detection. Risk-scored exposure analysis for every open port.

Technology fingerprinting

300+ detection patterns across web servers, frameworks, CMS, CDN, analytics, cloud platforms and security tooling, with version-level vulnerability correlation.

SSL/TLS monitoring

Certificate health grading (A+ to F), expiry alerting, TLS version detection, HSTS checks and self-signed certificate identification.

Credential leak monitoring

Continuous scanning of breach databases for leaked credentials tied to your domains, with severity-rated alerts and breach source attribution.

Dark web monitoring

Ongoing monitoring of dark web forums, paste sites, GitHub and Telegram channels for leaked credentials, data dumps and mentions of your organisation.

Technology detection coverage

  • Servers (20+) — nginx, Apache, IIS, LiteSpeed, Caddy, OpenResty, Traefik
  • Frameworks (100+) — React, Vue, Angular, Next.js, Laravel, Django, Spring Boot, Rails
  • CMS & commerce (50+) — WordPress, Drupal, Shopify, Magento, Ghost, WooCommerce
  • Cloud & CDN (25+) — AWS, Azure, GCP, Cloudflare, Akamai, Vercel, Fastly

Attack surface risk score

  • 30% — high-risk assets: critical and high-severity exposure
  • 20% — critical ports: dangerous services exposed to the internet
  • 20% — leaked credentials: confirmed breaches with severity rating
  • 15% — SSL issues: expired or misconfigured certificates
  • 15% — port exposure: distribution of risky open ports

Monitoring & reporting

  • Scheduling: hourly monitoring, daily scans, weekly sweeps, monthly audits
  • Per-domain scan configuration
  • Attack surface, SSL health and port exposure reports
  • Executive summary with PDF and JSON export

Engagement deliverables

  • Full asset inventory
  • Attack surface risk score
  • Port exposure report
  • SSL health report
  • Technology stack map
  • Credential leak alerts
  • Executive summary
  • Continuous monitoring
Mirage Validate badge

Mirage Validate

Penetration Testing as a Service (PTaaS)

Human-led penetration testing with a flexible credit-based model. Buy credits and test when you need — across web, API, mobile, network, cloud and more, with full lifecycle management from scoping to remediation.

  1. 01

    Scope

    Guided wizard, dynamic effort calculation

  2. 02

    Allocate

    Credits reserved, prerequisites collected

  3. 03

    Auto-scan

    Free Nessus & Acunetix scanning

  4. 04

    Manual test

    Human-led validation & exploitation

  5. 05

    QA & report

    Internal QA, findings released

  6. 06

    Remediate

    Track fixes, retest when ready

Vulnerability management

Full finding lifecycle with CVSS scoring, CWE/CVE tracking, evidence attachments and severity-based prioritisation through a Draft → QA → Open → Fixed workflow.

Integrated scanning

Built-in Nessus and Acunetix integration. Automated scans are free — only human validation consumes credits — and scan findings flow straight into the pentest workflow.

Dynamic effort estimation

A scoping questionnaire drives automated effort calculation using per-unit, range and boolean factors, with 15% planning overhead built in and manual adjustment supported.

Prerequisites gateway

Structured collection of VPN access, credentials, test accounts and API documentation, with an approval workflow that guarantees readiness before testing starts.

Evidence management

Attach screenshots, logs, HTTP requests/responses and code snippets to every finding, with inline viewing, captions and descriptions for clear communication.

Recurring engagements

Schedule continuous testing weekly, monthly, quarterly or annually, with occurrence tracking and comparison analytics across test cycles.

Supported test types

  • Web application — OWASP Top 10, business logic, authn/authz
  • API testing — REST, GraphQL and SOAP endpoints
  • Mobile — iOS and Android with MASVS coverage
  • Network — internal and external infrastructure
  • Cloud — AWS, Azure and GCP misconfiguration and IAM
  • Wireless — WPA/WPA2, rogue AP, segmentation
  • IoT — embedded devices, firmware and protocols
  • Social engineering — phishing, vishing and physical access

Finding lifecycle

  • CVSS v3.1 scoring with full vector string
  • CWE classification and CVE cross-referencing
  • QA approval gate — findings hidden until reviewed
  • Remediation notes with timestamped audit trail
  • Automatic Jira and ServiceNow ticket creation

Credit model

  • Credits are pre-approved and pre-purchased at a discounted rate
  • 12-month validity from purchase date
  • Volume discounts: 5% (10+), 10% (25+), 15% (50+)
  • Pre-configured bundles with bonus credits
  • Real-time balance tracking and expiry warnings

Engagement deliverables

  • Executive summary
  • Technical findings report
  • Risk-rated vulnerability matrix
  • Remediation roadmap
  • Free retest verification
  • Attestation letter
  • Automated scan results
  • Full audit trail
Mirage Adversary badge

Mirage Adversary

Red Team as a Service (RTaaS)

Full-spectrum adversary simulation with MITRE ATT&CK mapping, kill chain tracking and detection validation — measuring your SOC's ability to detect and respond to real-world threat actors.

  1. 01

    Recon

    Target research and intelligence gathering

  2. 02

    Weaponise

    Tooling and payload preparation

  3. 03

    Deliver

    Initial access attempts

  4. 04

    Exploit

    Execution and privilege escalation

  5. 05

    Install

    Persistence establishment

  6. 06

    C2

    Command and control channels

  7. 07

    Actions

    Objectives on target

MITRE ATT&CK mapping

Full 14-tactic ATT&CK matrix integration. Every technique and sub-technique is mapped to the framework with execution status, detection indicators and evidence.

Detection validation

Measure SOC effectiveness in real time, tracking Mean Time to Detect and Respond across 11 detection sources including SIEM, EDR, NDR, IDS/IPS and WAF.

Campaign timeline

Chronological attack narrative with kill chain phase assignment, outcomes, target systems and operator tracking — a full audit trail of every action taken.

Objective tracking

Define up to five campaign objectives from 50+ templates across seven categories, tracked with evidence, success criteria and priority levels.

TTP profile library

Eight pre-built attack scenarios from ransomware to APT to purple team. One-click loading populates techniques with full ATT&CK mapping.

Rules of engagement

Formal approval workflow with scope definition, ROE documentation, kickoff scheduling and contract reference, under a state-controlled campaign lifecycle.

Pre-built TTP profiles

  • Ransomware operator — 19 techniques
  • APT data exfiltration — 19 techniques
  • Insider threat — 13 techniques
  • Cloud infrastructure — 14 techniques
  • Web app attack — 15 techniques
  • Active Directory takeover — 15 techniques
  • Business email compromise — 11 techniques
  • Purple team validation — 21 techniques

Detection sources tracked

  • SIEM — log correlation and alerting
  • EDR — endpoint detection and response
  • NDR — network detection and response
  • IDS/IPS — intrusion detection and prevention
  • DLP — data loss prevention
  • SOC analyst — manual detection by operators
  • Threat hunting — proactive search operations

Blue team metrics measured

  • Detection rate — % of techniques detected
  • MTTD — Mean Time to Detect (minutes)
  • MTTR — Mean Time to Respond (minutes)
  • Technique success rate — % achieving objective
  • Kill chain penetration — deepest phase reached
  • Objective achievement — goals met vs attempted
  • Response breakdown — detected, investigated, contained, recovered

Engagement deliverables

  • ATT&CK coverage matrix
  • Attack narrative timeline
  • MTTD / MTTR metrics
  • Objective achievement report
  • Detection gap analysis
  • Executive summary
  • Remediation roadmap
Mirage Assure badge

Mirage Assure

Compliance & Assurance

Fixed-scope, expert-led compliance engagements covering Cyber Essentials, Cyber Essentials Plus, PCI-ASV quarterly scans and ISO 27001 readiness. Every engagement is structured, transparent and delivered through the Mirage portal.

  1. 01

    Scoping & proposal

    Scope defined, deliverables agreed, fixed-price proposal — no hidden fees

  2. 02

    Assessment & evidence

    Requirements tracked in portal; you upload evidence, we assess each control

  3. 03

    Remediation & delivery

    Gaps identified with clear advice, plus reports, certificates and submission packs

Engagement dashboard

Real-time compliance progress tracking across all active engagements with per-framework breakdowns and status indicators.

Requirement tracking

Every requirement mapped, categorised and tracked to completion, with pre-loaded templates for CE, CE+, PCI-ASV and ISO 27001.

Evidence management

Upload, review and manage evidence linked to specific requirements, with files tracked by status, reviewer notes and audit trail.

Assessor notes

Direct feedback from assessors with per-requirement remediation guidance, compliance status and priority indicators.

Artefact delivery

Reports, gap analyses, certificates and submission packs delivered through the portal with version tracking.

Activity audit

A full audit trail of every action taken during the engagement — evidence uploads, status changes, assessments and deliveries.

Cyber Essentials & CE+

  • SAQ preparation and review
  • Policy and procedure gap analysis
  • Boundary device and access control review
  • IASME submission support
  • CE+: technical controls verification and external vulnerability scanning
  • CE+: simulated phishing test, MFA verification, on-site or remote audit

PCI-ASV scanning

  • Quarterly external vulnerability scans by an Approved Scanning Vendor
  • Scan scope definition
  • Vulnerability remediation support
  • Passing scan attestation
  • Dispute resolution and compliance reporting

ISO 27001 readiness

  • ISO 27001:2022 gap analysis
  • Risk assessment methodology
  • Statement of Applicability review
  • ISMS documentation guidance
  • Control implementation advice
  • Certification readiness report

Engagement deliverables

  • Readiness report
  • Gap analysis
  • Remediation plan
  • Submission pack
  • Certificate
  • ASV scan report
  • Compliance report
  • Full audit trail
Compliance

Mapped to the frameworks you're audited against

Centralise evidence, map findings to controls and produce audit-ready reporting across every standard in scope.

ISO 27001

Continuous assurance against Annex A controls

Cyber Essentials

Simplify evidence collection and tracking

Cyber Essentials +

Manage remediation and verification activities

NIS2

Support operational resilience and compliance

TIBER-EU

Manage threat-led red team assessments

PCI DSS

Track vulnerabilities and compliance requirements

CIS Controls

Align findings to prioritised security controls

SOC 2

Evidence continuous monitoring for auditors

Workflow

Findings that flow into your everyday operations

Push findings, remediation tasks and reporting straight into the ticketing, identity and collaboration tools your teams already live in.

Connect the tools you already use

  • Microsoft Entra ID single sign-on
  • Jira and Azure DevOps integration
  • Microsoft Teams and Slack notifications
  • ServiceNow ticket synchronisation
  • API-first platform for custom integrations

Advanced portal automation

  • Automated scoping and scheduling
  • Custom branded reporting templates
  • Export reports in Word, PDF and CSV
  • Template library of vulnerability findings

Security governance & analytics

  • Compliance and SLA tracking
  • Role-based user access controls
  • Real-time remediation tracking
  • Security analytics and performance insight
Integrations

Works with your security stack

Findings, assets and remediation flow straight into the scanners and workflow tools your teams already run.

  • Nessus Professional logo
  • Qualys logo
  • Jira logo
  • Tenable logo
  • ServiceNow logo
Partner Programme

White-label testing for security teams

Enable your clients to access CREST-aligned penetration testing, red teaming and continuous AI-assisted validation — delivered under your brand, with your reporting and your SLAs.

  • Your brand, your client relationship
  • Pentesys consultants operate as an extension of your team
  • Co-branded or fully white-labelled reports
  • Flexible per-credit or retained pricing
PTaaS

Penetration Testing as a Service

Continuously assess your security posture through an ongoing, managed testing service tailored to your environment — with ease and flexibility.

  • Continuous testing

    Move beyond point-in-time tests to ongoing, adaptive assurance.

  • Flexible scheduling

    Test on your terms. No rushed fixes driven by a fixed test date.

  • Human validation

    Every AI-assisted finding is validated by a qualified consultant.

  • Credits

    Buy testing capacity once, then spend it as your programme evolves.

  • Portal integration

    Manage scope, progress, findings and retests in one place.

  1. 1

    Scope

    Define assets, test types and objectives in the portal.

  2. 2

    Testing

    Human-led testing supported by AI coverage.

  3. 3

    Reporting

    Live findings with actionable remediation guidance.

  4. 4

    Retesting

    Validate fixes as soon as they ship.

  5. 5

    Continuous monitoring

    Track posture and exposure between engagements.

“Our mission is continuous penetration testing — enabling businesses to evolve from static, point-in-time tests. Assurance is the key, not just testing.”

James Hinton · Founder

Testimonials

Trusted by security teams under pressure

Pentesys has continuously produced excellent work. Their group demonstrated extraordinary technical proficiency by spotting crucial flaws and offering clever fixes that greatly strengthened our security stance. Their meticulous approach and attention to detail ensured that every facet of the project was covered in full.

IT Security Specialist · Rightmove PLC
Save time and book a call with us

Enterprise-grade penetration testing, built around your business

CREST-registered testing delivered through a flexible PTaaS model — designed to fit your environment, risk profile and internal teams.